SSL certificates secure your website’s connection and boost its rankings in Google.And now, thanks to services like Let’s Encrypt, you can actually get a free SSL certificate for your website.This way if there is a problem with your new certificate or if there is a delay in getting your new certificate installed your sites are still secure.
Locate the SSL Virtual Host associated with your certificate.If your contains no Virtual Host information then you wil need to locate and amend the as above. Once the VCSA is booted up, you will need to go back into the VAMI interface and disable this setting, else another SSL certificate will be generated upon the next reboot.I was recently asked if it was possible to automate the SSL regeneration via the command-line without using the GUI which would be very useful for automated VCSA deployments.I’ve just discovered that one of our servers is not serving up it’s SSL certificate chain correctly.
This is fine for modern web browsers who trust the COMODO certificate, but for older browsers/operating systems you need to support higher up the trust chain.
If a browser says that a certificate is untrusted it means that it isn't signed by a trusted root certificate or that it can't link the certificate to a trusted root certificate.
If your certificate is signed by a major certificate authority then it just means one of the chain certificates in between yours and the root is not installed on the web server.
There are several problems that can occur when ordering, installing and using a certificate.
Here are some common SSL certificate errors and how to fix them.
The VCSA (v Center Server Appliance) provides a very simple way of regenerating the self-signed SSL Certificate by using the VAMI web management interface.